
PENNSYLVANIA STATE POLICE 

DEPARTMENT HEADQUARTERS 
1800 ELMERTON AVENUE 
HARRISBURG, PENNSYLVANIA 17110 


Mailing Date: July 31, 2019 

Emma Best 

MuckRock News 

DEPT MR 75666 

411A Highland Avenue 

Somerville, Massachusetts 02144-2516 

PSP/RTKL Request N° 2019-0668 
Dear Ms. Best: 

On June 24, 2019, the Pennsylvania State Police (PSP) received your request 
for information pursuant to Pennsylvania’s Right-to-Know Law (RTKL), 65 P.S. §§ 
67.101 - 67.3104, wherein you state: 

Pursuant to the Pennsylvania Right to Know Act, I hereby request the 
following records: 

Records mentioning, describing or generated as a result of the 8 May 
2015 Roll Call Release IA-0181-15 (which was designed to be shared 
widely with law enforcement) from the Department of Homeland 
Security’s Office of intelligence and Analysis (l&A) in conjunction with the 
Federal Bureau of Investigation, titled "Criminal Hackers Target Police to 
Protest Perceived Injustices," as well as records otherwise responding or 
reacting to the issues raised in it. 

A copy of your request is enclosed. By letter dated July 1, 2019, you were 
notified in accordance with RTKL section 67.902(b) that PSP required an additional 
thirty days to prepare this final response to your request. 

The PSP determined it does not have any records in its possession, custody, or 
control that respond to your request. A supporting verification confirming this assertion 
accompanies this final response letter. Pursuant to the decision in Jenkins vs. 
Pennsylvania Department of State, "It is not a denial of access when an agency does 
not possess records and [there is no] legal obligation to obtain them (see, e.g. section 
67.506 (d)(1).” Jenkins vs. Pa. Dep’t of State, Docket No. AP 2009-065 (available at, 
http://openrecords.state.pa.us) . Please be advised that our office contacted the PSP 


An Internationally Accredited Law Enforcement Agency 


Bureau of Criminal Investigation, and they confirmed they have no records responsive 
to this request. 

To the extent that your request seeks or may be construed to seek records 
pertaining to covert law enforcement investigations, including, intelligence gathering and 
analysis, the PSP can neither confirm nor deny the existence of such records without 
risk of compromising investigations and imperiling individuals. Under No 

Circumstances, therefore, should this final response be interpreted as indicating 
otherwise. In all events, should such records exist, they are entirely exempt from public 
disclosure under the RTKL and Criminal History Record Information Act, 18 Pa. C.S. §§ 
9101-9183. 

In closing, you have a right to appeal this response in writing to the Office of 
Open Records, 333 Market Street, 16 th Floor, Harrisburg, PA 17126-0333. The 
appropriate OOR appeal form is available for your use at, 

https://www.dced.state.pa.us/public/oor/appealformaeneral.pdf . If you choose to appeal, 
you must do so within 15 business days of the mailing date of this response and send to 
the OOR: 1) this response; 2) your request; 3) the reason or reasons why you think 
PSP wrongfully denied your access to the requested records, (a statement identifying 
any flaws in the reasons provided above as to why a requester is not subject to access 
the requested records under the RTKL). 

If you have any questions, please feel free to contact our office at the telephone 
number listed below. 


Sincerely, 



Lissa M. Ferguson 

Deputy Agency Open Records Officer 
Pennsylvania State Police 
Bureau of Records & Identification 
Right-to-Know Law/Subpoena Section 
1800 Elmerton Avenue 
Harrisburg, Pennsylvania 17110 
Email: RA-psprighttoknow@pa.gov 
1.877.785.7771 (Main); 717.525.5795 (Fax) 

Enclosures: PSP/ RTKL Request N° 2019-0668 
Ferguson Verification 
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PENNSYLVANIA STATE POLICE 
DEPARTMENT HEADQUARTERS 

VERIFICATION OF 
LISSAM. FERGUSON 

DEPUTY AGENCY OPEN RECORDS OFFICER 

I, Lissa M. Ferguson, Deputy Agency Open Records Officer of the 
Pennsylvania State Police (PSP or Department), am authorized to prepare 
this verification one Department’s behalf in response to PSP/RTKL Request 
N° 2019-0668. Accordingly, on this 31st day of July, 2019, I verify the 
following facts to be true and correct, to the best of my knowledge or 
information and belief: 

1. I am familiar with PSP/RTKL Request N° 2019-0668, which is 
attached to this verification. 

2. Utilizing the information contained in the request, I searched 
all Department databases to which I have access for evidence 
of any PSP records that may respond to the request. 

3. I have determined PSP does not have any records responsive 
to this RTKL quest in its possession, custody, or control. 

4. Requestor was advised that our office contacted the PSP 
Bureau of Criminal Investigation, and they confirmed they 
have no records responsive to this request. 


I understand that false statements made in this verification are subject 
to penalties of 18 Pa. C.S. § 4904, relating to unsworn falsification to 
authorities. 



Lissa M. Ferguson 

Deputy Agency Open Records Officer 
Pennsylvania State Police 
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From: 

Sent: 

To: 

Subject: 

Attachments; 


75666-86017736@requests.muckrock.com 

Friday, June 21, 2019 1:13 PM 
SP, PSP RIGHT TO KNOW 

[External] Pennsylvania Right to Know Act Request: Criminal Hackers Target Police to 
Protest Perceived Injustices (Pennsylvania State Police) 

DHS-FBI-HackersTargetPolice.pdf, PA_Right_to_Know_Request_Form.pdf 


ATTENTION: This email message is from an external sender. Do not open links or attachments from unknown sources. To 
report suspicious email, forward the message as an attachment to CWOPA_SPAM@pa.gov. 
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Pennsylvania State Police 
RTK Office 

1800 Elmerton Avenue 
Harrisburg, PA 17110 

June 21, 2019 

To Whom It May Concern: 

Pursuant to the Pennsylvania Right to Know Act, I hereby request the following records: 

Records mentioning describing or generated as a result of the 8 May 2015 Roll Call Release IA-0181-15 (which was 
designed to be shared widely with law enforcement) from the Department of Homeland Security s Office of intelligence 
and Analysis (l&A) in conjunction with the Federal Bureau of Investigation, titled "Criminal Hacke ' s Ta [^ 0 ,CC 
Protest Perceived Injustices," as well as records otherwise responding or reacting to the issues raised it. 

I am a member of the news media and request classification as such. I have previously written about the swmment 
and its activities, with some reaching over 100,000 readers in outlets such as Gizmodo, MuckRock Motherboard 
Property of the People, Unicorn Riot, and The Outline, among others. As such, as I have a reasonable expeetatio 
puXadon and my editorial and writing skills are well established. In addition, I discuss and comment on the I'es online 
and make them available through non-profits such as the library Internet Archive and the journalist non-profit 
MuckRock, disseminating them to a large audience. While my research is not limited to this, a great deal of it, me g 
this, focuses on the activities and attitudes of the government itself. 

As mv primary purpose is to inform about government activities by reporting on it and making the raw data available, I 
request that fees be waived. 

The requested documents will be made available to the general public, and this request is not being made for 
commercial purposes. 

in the event that there are fees, I would be grateful If you would Inform me of the ttotal ccharges In' ad ™"« °J ,ulfillinB 
my request. I would prefer the request filled electronically, by e-mail attachment if available or CD-ROM 

Thank you in advance for your anticipated cooperation in this matter. I look forward to receiving your response to this 
request within 5 business days, as the statute requires. 


Sincerely, 


l 




Emma Best 


Filed via MuckRock.com 

E-mail (Preferred): 75666-86017736@requests.muckrock.com 


https^//a«ounts.mucl^ockxom/accounts/login/?next=h«tps%3A%2F%2Fwww.Tnuckrock.com%2Faccoun^s%2Flogin%2F 
%3Fnext%3D%252Faccounts%252FagencyJogin%252Fpennsylvania-st^e-polKe-435%252Fcriniinal-hackers t 


pJE9CPHSoPJE , 

Is this email coming to the wrong contact? Something else wrong? Use 


the above 


link to let us know. 


For mailed responses, please address (see note). 

MuckRock News 

DEPT MR 75666 

411A Highland Ave 

Somerville, MA 02144-2516 


P! FASE NOTE- This request is not filed by a MuckRock staff member, but is being sent through MuckRock by the!above in 
X S n belter tmck sha^e and manage public records requests. Also note that improperly addressed (i.e w.th the 
requester’s name rather than "MuckRock News" and the department number) requests might be returned as 

undeliverable. 
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ROLL CALL RELEASE 

INTELLIGENCE FOIL POLICE, FIRE, EMS, AND SECURITY PERSONNEL 


m\ 




8 May 2015 


(U//FOUO) Criminal Hackers Target Police to Protest Perceived Injustices 


(U//FOUO) Disruptive cyber attacks by criminal hackers—primarily 
distributed-denial-of-service (DDoS) attacks—targeting local law enforcement 
websites have increased since August 2014. We judge that this is almost 
certainly a result of the heightened coverage surrounding the alleged use of 
excessive force by law enforcement and an increased focus on incidents of 
perceived police brutality. The primary impact from the majority of these 
attacks has been the temporary disruption of the targeted public-facing websites 

» (U//FOUO) In 2014, the Multi-State Information Sharing and Analysis 

Center (MS-ISAC) observed 53 separate incidents of criminal hackers 
conducting cyber operations against state and local entitles in response to 

... r * e _i i—... nnfn^n rw Tho i n r 
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(U) Figure I. Criminal Hackers 
Targeting Police__ 


inddents Sieged use of excessive force by law enforcement. The majority of these incidents were low to 
moderate in effect, most frequently resulting in temporary disruption to targeted websites. 

(U//FOUO) On the morning of 30 December 2014, unknown criminal hackers disabled a Midwestern police 
department's public website using a DDoS attack. A post later that morning on a US ^ cia| - ne ^ o rking s,te 
containing the hashtag "#BlackLives Matter" announced that the targeted website was down. The disabling 
of this website was the third successful attack to disable a law enforcement website in die sate within, awveek 
the attacks were limited to the temporary disablement of targeted websites, according to DHS field reporting. 

(U//FOUO) A criminal hacker using the moniker (at)DigitaShadow claimed responsibility on a US sodaJ-media site 
for disrupting access to a Northwestern city police department's website in early December 2014. The DDoS 
attack which lasted approximately 10 minutes, prevented the department’s in-car terminals from transmitting or 
receiving traffic, including 911 dispatch requests, according to FBI reporting. 


(U//FOUO) MS-ISAC Dlstrlbuted-Denial-of-Service Mitigation Recommendations 
(U) Proactive protections Include: 

» (U) Establish connections with multiple Internet service providers (ISPs) (or redundancy. 

» (U) Ensure service-level agreements with ISPs contain provisions for DoS prevention (such as IP address rota on), 

» (U) Conduct rate-limiting of traffic at the network perimeter, and 

» (U) Create backup, remote-site network Infrastructure using multiple addressing schemes. 

(U) Reactive protections Include: 

» (U) Execute ISP address rotation, . ■ . 

» (U) Block source IP addresses generating DoS traffic at enterprise boundary or within ISP infrastructure, and 

» (U) Acquire increased bandwidth capability from the ISP. 

(U//FOUO) See MS-ISAC's “Guide to DDoS Attacks" for additional information: 

http://msisac.dsecurity.org/resources/reports/documents/GuidetoDOoSAttacks_000.pdf. 


(U) Reporting Computer Security Incidents 


acceptable use policies, or standard computer security practl • t ,. j Indudlne personally Identifiable Information; unwanted 

without the owner's knowledge, instruction, or consent.___ ■ _ _ ___—---— 
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